Papers
Topics
Authors
Recent
Gemini 2.5 Flash
Gemini 2.5 Flash
110 tokens/sec
GPT-4o
56 tokens/sec
Gemini 2.5 Pro Pro
44 tokens/sec
o3 Pro
6 tokens/sec
GPT-4.1 Pro
47 tokens/sec
DeepSeek R1 via Azure Pro
28 tokens/sec
2000 character limit reached

Seeing isn't Believing: Practical Adversarial Attack Against Object Detectors (1812.10217v3)

Published 26 Dec 2018 in cs.CV and cs.CR

Abstract: In this paper, we presented systematic solutions to build robust and practical AEs against real world object detectors. Particularly, for Hiding Attack (HA), we proposed the feature-interference reinforcement (FIR) method and the enhanced realistic constraints generation (ERG) to enhance robustness, and for Appearing Attack (AA), we proposed the nested-AE, which combines two AEs together to attack object detectors in both long and short distance. We also designed diverse styles of AEs to make AA more surreptitious. Evaluation results show that our AEs can attack the state-of-the-art real-time object detectors (i.e., YOLO V3 and faster-RCNN) at the success rate up to 92.4% with varying distance from 1m to 25m and angles from -60{\deg} to 60{\deg}. Our AEs are also demonstrated to be highly transferable, capable of attacking another three state-of-the-art black-box models with high success rate.

User Edit Pencil Streamline Icon: https://streamlinehq.com
Authors (6)
  1. Yue Zhao (394 papers)
  2. Hong Zhu (52 papers)
  3. Ruigang Liang (9 papers)
  4. Qintao Shen (2 papers)
  5. Shengzhi Zhang (18 papers)
  6. Kai Chen (512 papers)
Citations (15)

Summary

We haven't generated a summary for this paper yet.